Malware

Fugrafa.459 removal guide

Malware Removal

The Fugrafa.459 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Fugrafa.459 virus can do?

  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Fugrafa.459?


File Info:

name: BBCC21458556C17D326A.mlw
path: /opt/CAPEv2/storage/binaries/f126b0c62e68511f670e7600ba5ada35358429e5f903e9e9d08831c41e6f7ea0
crc32: 687BC626
md5: bbcc21458556c17d326adc2a9e429acd
sha1: 671e42a247ec7803fdd5b2d7a9cdb9fee8228aed
sha256: f126b0c62e68511f670e7600ba5ada35358429e5f903e9e9d08831c41e6f7ea0
sha512: 31704f9b3a2aabe26140d937af7afbeeeaafc0117775ea9f25abc1a2e07663c337b02e1523a67bb9713b91ce093456c59dbfdd35b212596fa30c424a46c97d1e
ssdeep: 12288:9ZNNDPDqNzKbtB1aV69KrJtUuK53bribJIrdR6HBQTLF6VK3Geoydw:9ZTyzKxDVKr8uKRbribJIrDTToQ3QR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BF25397EBB8EA536C8314ABC4DAFE5D5980A39313C185847F6805F4C6E355E2372AE43
sha3_384: 4ba2701aff0ae32a226c341f5af0bf8a2409a9e3b715978762e2087b9028c8e760b09db61280bbb6fb0fcad7f555e3dc
ep_bytes: 558bec83c4f05356b874814e00e8caea
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Fugrafa.459 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.bbcc21458556c17d
CAT-QuickHealTrojan.BlockPMF.S22283971
McAfeePWS-Banker.gen.ez
ZillyaTrojan.Agent.Win32.148927
CrowdStrikewin/malicious_confidence_80% (D)
BitDefenderGen:Variant.Fugrafa.459
K7GWSpyware ( 0026b47a1 )
K7AntiVirusSpyware ( 0026b47a1 )
CyrenW32/Banker.V.gen!Eldorado
ESET-NOD32Win32/Spy.Banker.WGA
APEXMalicious
ClamAVWin.Trojan.Netmail-9844910-0
KasperskyHEUR:Trojan-Ransom.Win32.Blocker.gen
NANO-AntivirusTrojan.Win32.Agent.dpnib
MicroWorld-eScanGen:Variant.Fugrafa.459
Ad-AwareGen:Variant.Fugrafa.459
EmsisoftGen:Variant.Fugrafa.459 (B)
ComodoTrojWare.Win32.Spy.Banker.VIS@8ekceg
DrWebTrojan.MulDrop7.21669
TrendMicroTrojanSpy.Win32.BANKER.SMTH
McAfee-GW-EditionBehavesLike.Win32.PWSBanker.th
SophosML/PE-A + Troj/Agent-BCNT
IkarusTrojan-Spy.Zbot
GDataWin32.Trojan-Stealer.Banker.AK
JiangminTrojan/Agent.ergo
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.B33C5
KingsoftHeur.SSC.2656812.1216.(kcloud)
ViRobotTrojan.Win32.A.Agent.1050112.A
MicrosoftTrojanSpy:Win32/Banker
AhnLab-V3Trojan/Win32.Blocker.C4183918
Acronissuspicious
VBA32Trojan.Runner.4705
ALYacGen:Variant.Fugrafa.459
TACHYONRansom/W32.DP-Blocker.1048576
MalwarebytesTrojan.Banker
TrendMicro-HouseCallTrojanSpy.Win32.BANKER.SMTH
RisingTrojan.Generic@ML.100 (RDML:76mvYLs621x4V/y91FOtFg)
YandexTrojanSpy.Banker!RpdYxqegq+M
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Banker.WGA!tr
Cybereasonmalicious.58556c
PandaGeneric Malware

How to remove Fugrafa.459?

Fugrafa.459 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment